๐บ๐ธ
xmission.com
2025-12-29 11:37:48
(5 months ago)
Blocked by UFW (TCP on 52380)
Source port: 11981
TTL: 54
Packet length: 60
TOS: 0x08
This report (f ...
show more
Blocked by UFW (TCP on 52380)
Source port: 11981
TTL: 54
Packet length: 60
TOS: 0x08
This report (for 37.19.210.83) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ฑ๐ป
garmtech.com
2025-12-04 12:19:55
(6 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 14-19.37.19.210.83.web-spammer ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 14-19.37.19.210.83.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐บ๐ธ
xmission.com
2025-11-23 15:51:33
(6 months ago)
Blocked by UFW (TCP on 54508)
Source port: 18816
TTL: 117
Packet length: 60
TOS: 0x08
This report ( ...
show more
Blocked by UFW (TCP on 54508)
Source port: 18816
TTL: 117
Packet length: 60
TOS: 0x08
This report (for 37.19.210.83) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ฉ๐ช
Packets-Decreaser.NET
2025-07-15 17:54:20
(10 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐ฉ๐ช
Vegascosmetics
2025-07-13 21:51:38
(11 months ago)
Kingcopy(AI-IDS): IP is wandering around the site and acting suspiciously.
Bad Web Bot
๐ณ๐ฑ
i-turnradio.nl
2025-07-12 23:42:20
(11 months ago)
2025-07-13 @ 01:42:20 (CET) ~ Blocked based on risk assessment and prior abuse reports
Web App Attack
๐ฌ๐ง
[email protected]
2025-07-12 22:53:06
(11 months ago)
moodle.rcaos.org.uk:443 37.19.210.83 - - [12/Jul/2025:22:53:05 +0000] "GET /.env HTTP/1.1" 404 3900 ...
show more
moodle.rcaos.org.uk:443 37.19.210.83 - - [12/Jul/2025:22:53:05 +0000] "GET /.env HTTP/1.1" 404 3900 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0"
...
show less
Hacking
Web App Attack
๐ณ๐ฑ
enpepet
2025-07-12 22:08:50
(11 months ago)
GENERAL: parametres: [url:env=] UA:Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/2010 ...
show more
GENERAL: parametres: [url:env=] UA:Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0 URL:/.env
show less
Port Scan
Hacking
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-07-12 22:01:52
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 37.19.210.83 (unn-37-19-210-83.datapacket.com): ...
show more
(mod_security) mod_security (id:210492) triggered by 37.19.210.83 (unn-37-19-210-83.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 12 18:01:46.896981 2025] [security2:error] [pid 14481:tid 14506] [client 37.19.210.83:55163] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "inal.org"] [uri "/.env"] [unique_id "aHLbSi4n6aZAkaoVPDowgwAAAFc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Ba-Yu
2025-07-12 22:01:51
(11 months ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ณ๐ฟ
Tripwire
2025-07-12 22:01:17
(11 months ago)
Scanning for exploits - /.env
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-12 21:34:04
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 37.19.210.83 (unn-37-19-210-83.datapacket.com): ...
show more
(mod_security) mod_security (id:210492) triggered by 37.19.210.83 (unn-37-19-210-83.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 12 17:33:57.964440 2025] [security2:error] [pid 14399:tid 14399] [client 37.19.210.83:59063] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "73.org"] [uri "/.env"] [unique_id "aHLUxaOwgI5ncVCYA3nYTgAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Mr-Money
2025-07-12 21:24:49
(11 months ago)
37.19.210.83 - - [12/Jul/2025:23:24:48 +0200] "GET /.env HTTP/1.1" 404 13318 "-" "Mozilla/5.0 (Macin ...
show more
37.19.210.83 - - [12/Jul/2025:23:24:48 +0200] "GET /.env HTTP/1.1" 404 13318 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0"
...
show less
Hacking
SQL Injection
Bad Web Bot
Exploited Host
Web App Attack
๐ซ๐ท
โจ
2025-07-12 20:33:01
(11 months ago)
Domain : todoparatuboda.com
Rule : env
2025-07-12 20:32:14 152.53.103.155 GET /.env - 443 - 172.69.6 ...
show more
Domain : todoparatuboda.com
Rule : env
2025-07-12 20:32:14 152.53.103.155 GET /.env - 443 - 172.69.65.210 HTTP/2 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0 - todoparatuboda.com 200 0 0 5738 393 2019 - 37.19.210.83
show less
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2025-07-12 20:27:59
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 37.19.210.83 (unn-37-19-210-83.datapacket.com): ...
show more
(mod_security) mod_security (id:210492) triggered by 37.19.210.83 (unn-37-19-210-83.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 12 16:27:54.059083 2025] [security2:error] [pid 29862:tid 29862] [client 37.19.210.83:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "antitribu.com"] [uri "/.env"] [unique_id "aHLFSsgQHCQ5cW6wUS-vyAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack